Connected tools

Understand MCP and WebMCP connections

Learn how tool connections can expose specific capabilities to supported AI workflows while preserving clear permissions.

9 min readAdvancedUpdated 2026-07-26For LobeWork 1.0+
01

Understand the capability

An MCP-style connection can expose named tools or resources. Review what each connection is allowed to do before enabling it.

Review what each connection is allowed to do before enabling it.

02

Use least privilege

Enable only the servers, tools, folders, and actions needed for the current work.

03

Keep credentials protected

Connection secrets belong in secure storage, not inside project notes, prompts, or shared files.

04

Review tool calls

For sensitive actions, require visible confirmation and review the target before execution.

05

Disable unused servers

Remove or pause connections that are not actively needed to reduce confusion and risk.

NEED A GUIDED ANSWER?

Ask LobeWork about this guide.

The support assistant uses the same published guide library and will link you back to the most relevant article.

WAS THIS GUIDE HELPFUL?Help us improve the documentation.